Installation

Anyone have a good tutorial on Docker containerizing and upgrading and managing Splunk in a container environment?

daniel333
Builder

All,

Anyone have a good walk through or tutorial on managing Splunk as a container? Upgrades and not loosing configs? SHC and user local files? Mounting disks for indexers into the container? That sort of thing.

Labels (1)
0 Karma
1 Solution

felipesewaybric
Contributor

I would start with this one:

https://conf.splunk.com/files/2016/slides/how-to-run-splunk-as-a-docker-image.pdf

then customize and even try it on kubernets

View solution in original post

0 Karma

outcoldman
Communicator

@daniel333 I am co-presenter on the link posted below by felipesewaybricker. I left Splunk year ago and co founded https://www.outcoldsolutions.com, our company is specialized on providing Monitoring Solutions for Containers and consulting around Splunk + Containers. I am author of Splunk images, so I know them from the ground. Feel free to shoot me email, especially if your company is looking for professional consulting on this topic.

0 Karma

felipesewaybric
Contributor

wow, nice to meet you, very good presentation, we took lots of useful information and I learned a lot from her.

0 Karma

outcoldman
Communicator

Thank you! Glad that it was useful!

0 Karma

felipesewaybric
Contributor

I would start with this one:

https://conf.splunk.com/files/2016/slides/how-to-run-splunk-as-a-docker-image.pdf

then customize and even try it on kubernets

0 Karma

daniel333
Builder

Basically I didn't have my head around the core concepts in docker when it comes to data persistence. Had to stop, do some Docker 101 training then the material above made a lot of sense. Thanks!

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...